HomeSecurityHackers claim to have breached HSBC USA customer records

Hackers claim to have breached HSBC USA customer records

A threat actor has claimed responsibility for the HSBC USA, claiming to be in possession of a massive database containing sensitive personally identifiable information (PII) and financial details of customers.

See also: FinWise Bank: Data breach affects American First Finance customers

HSBC hacker

The hacker posted screenshots and data samples on a Dark Web, claiming that the breach involved coordinated efforts to extract files from the bank’s systems. This incident, reported on October 28, 2025, has raised concerns in the cybersecurity community amid HSBC’s ongoing challenges in the U.S. market.

The allegedly stolen database includes full names, addresses, Social Security numbers (SSNs), dates of birth, phone numbers, email addresses, transaction histories, stock orders, and bank account numbers. Researchers analyzed a provided sample and found signs of legitimacy, with the data appearing recent, possibly from just a few weeks ago, and potentially targeting corporate or institutional clients rather than retail.

See also: Bank Fraud: The simple solution that Greek banks refuse to implement

Hackers claim to have breached HSBC USA customer records

HSBC USA has largely exited the mass retail banking sector in the U.S., which could explain its focus on business accounts. The attached screenshot of the forum post confirms the claim, showing an “Exclusive HSBC USA Database” with promises of validation and no free distribution.

HSBC has acknowledged a recent denial-of-service (DoS) attack but has categorically denied any breach of customer data in its official statements. The bank is investigating the claims through third-party access points and has strengthened defenses with improved authentication and monitoring.

No financial losses have been confirmed, but experts warn of risks such as identity theft, spear-phishing and social engineering attacks that exploit the exposed details. Regulators, including the US Treasury Department, are closely monitoring the situation. This breach highlights the vulnerabilities in third-party ecosystems in the financial sector, potentially damaging HSBC's reputation and causing customer loss.

See also: Crypto investment scams: 5 people guilty of money laundering

Hackers claim to have breached HSBC USA customer records

Customers are urged to monitor their accounts, enable two-factor authentication and change passwords immediately to mitigate potential consequences. As investigations continue, the full extent remains unclear, but the incident highlights the persistent threats facing global banks.

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Absentee Mia
Absentee Miahttps://www.secnews.gr/politiki-syntaxis/
Member of the Editorial Team of SecNews. He writes about cybersecurity, online fraud, privacy and technology. All articles follow the SecNews Editorial Policy.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS